Stars
Ghidra C++ Class and Run Time Type Information Analyzer
Defeating Patchguard universally for Windows 8, Windows 8.1 and all versions of Windows 10 regardless of HVCI.
A library to read physical memory and system-wide virtual memory.
Identifying Virtual Table Functions using VTBL IDA Pro Plugin + Deviare Hooking Engine
Community guide to securing and improving privacy on macOS.
A sane API for IDA Pro's decompiler. Useful for malware RE and vulnerability research
A library that simplifies intercepting application function calls using managed code and the .NET Core runtime
Fast persistent recoverable log and key-value store + cache, in C# and C++.
Ghidra is a software reverse engineering (SRE) framework
120+ interactive Python coding interview challenges (algorithms and data structures). Includes Anki flashcards.
Windows Calculator: A simple yet powerful calculator that ships with Windows
disable most common windowsx64 systems patchguard
Parsing gigabytes of JSON per second : used by Facebook/Meta Velox, the Node.js runtime, ClickHouse, WatermelonDB, Apache Doris, Milvus, StarRocks
Porting Windows Dynamic Link Libraries to Linux
Windows kernel hacking framework, driver template, hypervisor and API written on C++
IDA Pro plugin to aid PS4 user mode ELF reverse engineering.